Agent security, made visible
Know what your agents can do before they do it.
Krahanos reads your Python repository for dangerous capabilities, quietly and without executing a single line.
AST-powered Source-only Deterministic
What gets checked
Specific signals, not vague warnings.
Krahanos parses Python with AST analysis and reports the capabilities that deserve a human decision.
01Shell and subprocess execution
02Network and outbound calls
03Secrets and environment access
04Database writes and file deletion
05Dynamic code execution
06MCP and tool registration
See the signal log
Know what the report looks like before you upload.
Findings are grouped by KRN, then expandable down to the exact file and line.
sample-agent-repository67 / 100
criticalKRN-001 · Shell execution detected2 instances
mediumKRN-008 · Environment access1 instance
Grouped findings · source locations · recommendations
Built to inspect without becoming part of the risk.Repositories are never executed or installed. Scans run in a temporary workspace that is deleted after processing. Public GitHub sync needs no token; private access uses a read-only GitHub App installation.